sdg records
3 published records for vendor sdg.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')2
- CWE-862 Missing Authorization1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
3 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2020-24841No exploit | PNPSCADA 2.200816204020 allows SQL injection via parameter 'interf' in /browse.jsp.sdg · pnpscada · CWE-89 | Critical9.8 | — | 1.6% | Feb 16, 2021 |
37Monitor | CVE-2024-2882No exploit | Missing Authorization in SDG Technologies PnPSCADAsdg technologies · pnpscada · CWE-862 | Critical9.3 | — | 0.7% | Jun 27, 2024 |
32Monitor | CVE-2023-1934Proof of concept | The PnPSCADA system, a product of SDG Technologies CC, is afflicted by a critical unauthenticated error-based PostgreSQL Injection vulnerabisdg · pnpscada · CWE-89 | High7.5 | — | 8.1% | May 12, 2023 |
- CVE-2020-2484139Monitor
PNPSCADA 2.200816204020 allows SQL injection via parameter 'interf' in /browse.jsp.
CriticalCVSS 9.8No exploitEPSS 2%sdg · pnpscadaFeb 16, 2021
- CVE-2024-288237Monitor
Missing Authorization in SDG Technologies PnPSCADA
CriticalCVSS 9.3No exploitEPSS 1%sdg technologies · pnpscadaJun 27, 2024
- CVE-2023-193432Monitor
The PnPSCADA system, a product of SDG Technologies CC, is afflicted by a critical unauthenticated error-based PostgreSQL Injection vulnerabi
HighCVSS 7.5Proof of conceptEPSS 8%sdg · pnpscadaMay 12, 2023